bind cryptographically weak query ids
Published Jul 24, 2007
4.3
MEDIUMCVSS 2.0
EPSS 13.09%
Description
ISC BIND 9 through 9.5.0a5 uses a weak random number generator during generation of DNS query ids when answering resolver questions or sending NOTIFY messages to slave name servers, which makes it easier for remote attackers to guess the next query id and perform DNS cache poisoning.
Affected products
No data.
No data.
Red Hat Enterprise Linux 2.1
bind-0:9.2.1-9.el2
Fixed · RHSA-2007:0740
Red Hat Enterprise Linux 3
bind-20:9.2.4-21.el3
Fixed · RHSA-2007:0740
Red Hat Enterprise Linux 4
bind-20:9.2.4-27.0.1.el4
Fixed · RHSA-2007:0740
Red Hat Enterprise Linux 5
bind-30:9.3.3-9.0.1.el5
Fixed · RHSA-2007:0740
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 2.1 | bind-0:9.2.1-9.el2 | Fixed | RHSA-2007:0740 |
| Red Hat Enterprise Linux 3 | bind-20:9.2.4-21.el3 | Fixed | RHSA-2007:0740 |
| Red Hat Enterprise Linux 4 | bind-20:9.2.4-27.0.1.el4 | Fixed | RHSA-2007:0740 |
| Red Hat Enterprise Linux 5 | bind-30:9.3.3-9.0.1.el5 | Fixed | RHSA-2007:0740 |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Metrics
No CVSS v4.0 score for this CVE.
No CVSS v3.1 score for this CVE.
No CVSS v3.0 score for this CVE.
AV:N/AC:M/Au:N/C:N/I:P/A:N
This CVE is not in the KEV list.
No CISA SSVC assessment for this CVE yet.
Estimated probability of exploitation in the wild in the next 30 days (FIRST EPSS). As of Oct 1, 2026.
Score over time
2022–2026- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Percentile over time
- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Table of values (30 key points)
Flat stretches are collapsed; showing up to 120 newest points.
| Date | Score | Percentile | Model |
|---|---|---|---|
| Oct 1, 2026 | 13.09% (0.13090) | 96.24th | v5 (v2026.06.15) |
| Jun 15, 2026 | 13.09% (0.13090) | 95.84th | v5 (v2026.06.15) |
| Mar 5, 2026 | 19.94% (0.19942) | 95.35th | v4 (v2025.03.14) |
| Mar 3, 2026 | 17.15% (0.17148) | 94.92th | v4 (v2025.03.14) |
| Dec 1, 2025 | 19.94% (0.19942) | 95.28th | v4 (v2025.03.14) |
| Nov 30, 2025 | 16.81% (0.16811) | 94.69th | v4 (v2025.03.14) |
| Oct 19, 2025 | 18.77% (0.18771) | 94.98th | v4 (v2025.03.14) |
| May 17, 2025 | 15.04% (0.15044) | 94.18th | v4 (v2025.03.14) |
| Mar 30, 2025 | 18.77% (0.18771) | 94.79th | v4 (v2025.03.14) |
| Mar 29, 2025 | 28.02% (0.28019) | 94.40th | v4 (v2025.03.14) |
| Mar 19, 2025 | 17.93% (0.17933) | 94.40th | v4 (v2025.03.14) |
| Mar 17, 2025 | 14.03% (0.14029) | 93.82th | v4 (v2025.03.14) |
| Feb 2, 2025 | 61.56% (0.61556) | 97.99th | v3 (v2023.03.01) |
| Dec 17, 2024 | 68.94% (0.68941) | 98.17th | v3 (v2023.03.01) |
| Dec 16, 2024 | 23.45% (0.23451) | 96.76th | v3 (v2023.03.01) |
| Oct 27, 2024 | 29.80% (0.29801) | 97.00th | v3 (v2023.03.01) |
| Aug 11, 2024 | 34.99% (0.34994) | 97.19th | v3 (v2023.03.01) |
| Jul 4, 2024 | 23.27% (0.23268) | 96.59th | v3 (v2023.03.01) |
| May 27, 2024 | 21.82% (0.21820) | 96.45th | v3 (v2023.03.01) |
| Apr 19, 2024 | 11.07% (0.11073) | 95.07th | v3 (v2023.03.01) |
| Mar 12, 2024 | 9.71% (0.09715) | 94.64th | v3 (v2023.03.01) |
| Feb 3, 2024 | 7.39% (0.07393) | 93.47th | v3 (v2023.03.01) |
| Dec 26, 2023 | 5.21% (0.05214) | 92.24th | v3 (v2023.03.01) |
| Nov 18, 2023 | 6.24% (0.06243) | 92.83th | v3 (v2023.03.01) |
| Jul 30, 2023 | 4.78% (0.04781) | 91.62th | v3 (v2023.03.01) |
| Jun 24, 2023 | 2.45% (0.02450) | 88.49th | v3 (v2023.03.01) |
| Mar 7, 2023 | 2.47% (0.02466) | 88.34th | v3 (v2023.03.01) |
| Mar 6, 2023 | 15.27% (0.15272) | 95.95th | v2 (v2022.01.01) |
| Apr 1, 2022 | 15.27% (0.15272) | 95.58th | v2 (v2022.01.01) |
| Feb 4, 2022 | 15.27% (0.15272) | 91.38th | v2 (v2022.01.01) |
No CWE recorded.
References (71)
- ftp://aix.software.ibm.com/aix/efixes/security/README x_refsource_CONFIRM
- ftp://patches.sgi.com/support/free/security/advisories/20070801-01-P.asc vendor-advisoryx_refsource_SGI
- http://docs.info.apple.com/article.html?artnum=307041 x_refsource_CONFIRM
- http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01123426 vendor-advisoryx_refsource_HP
- http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01154600 vendor-advisoryx_refsource_HP
- http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01174368 vendor-advisoryx_refsource_HP
- http://lists.apple.com/archives/security-announce/2007/Nov/msg00002.html vendor-advisoryx_refsource_APPLE
- http://marc.info/?l=bugtraq&m=141879471518471&w=2 vendor-advisoryx_refsource_HP
- http://secunia.com/advisories/26148 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/26152 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/26160 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/26180 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/26195 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/26217 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/26227 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/26231 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/26236 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/26261 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/26308 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/26330 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/26509 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/26515 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/26531 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/26605 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/26607 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/26847 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/26925 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/27643 third-party-advisoryx_refsource_SECUNIA
- http://security.freebsd.org/advisories/FreeBSD-SA-07:07.bind.asc vendor-advisoryx_refsource_FREEBSD
- http://sunsolve.sun.com/search/document.do?assetkey=1-26-103018-1 vendor-advisoryx_refsource_SUNALERT
- http://support.avaya.com/elmodocs2/security/ASA-2007-389.htm x_refsource_CONFIRM
- http://support.nortel.com/go/main.jsp?cscat=BLTNDETAIL&id=623903 x_refsource_CONFIRM
- http://www-1.ibm.com/support/search.wss?rs=0&q=IZ02218&apar=only vendor-advisoryx_refsource_AIXAPAR
- http://www-1.ibm.com/support/search.wss?rs=0&q=IZ02219&apar=only vendor-advisoryx_refsource_AIXAPAR
- http://www.debian.org/security/2007/dsa-1341 vendor-advisoryx_refsource_DEBIAN
- http://www.gentoo.org/security/en/glsa/glsa-200708-13.xml vendor-advisoryx_refsource_GENTOO
- http://www.isc.org/index.pl?/sw/bind/bind-security.php x_refsource_CONFIRM
- http://www.kb.cert.org/vuls/id/252735 third-party-advisoryx_refsource_CERT-VNUS Government Resource
- http://www.mandriva.com/security/advisories?name=MDKSA-2007:149 vendor-advisoryx_refsource_MANDRIVA
- http://www.novell.com/linux/security/advisories/2007_47_bind.html vendor-advisoryx_refsource_SUSE
- http://www.openpkg.com/security/advisories/OpenPKG-SA-2007.022.html vendor-advisoryx_refsource_OPENPKG
- http://www.redhat.com/support/errata/RHSA-2007-0740.html vendor-advisoryx_refsource_REDHAT
- http://www.securiteam.com/securitynews/5VP0L0UM0A.html x_refsource_MISC
- http://www.securityfocus.com/archive/1/474516/100/0/threaded mailing-listx_refsource_BUGTRAQ
- http://www.securityfocus.com/archive/1/474545/100/0/threaded mailing-listx_refsource_BUGTRAQ
- http://www.securityfocus.com/archive/1/474808/100/0/threaded mailing-listx_refsource_BUGTRAQ
- http://www.securityfocus.com/archive/1/474856/100/0/threaded mailing-listx_refsource_BUGTRAQ
- http://www.securityfocus.com/bid/25037 vdb-entryx_refsource_BID
- http://www.securityfocus.com/bid/26444 vdb-entryx_refsource_BID
- http://www.securitytracker.com/id?1018442 vdb-entryx_refsource_SECTRACK
- http://www.slackware.org/security/viewer.php?l=slackware-security&y=2007&m=slackware-security.521385 vendor-advisoryx_refsource_SLACKWARE
- http://www.trusteer.com/docs/bind9dns.html x_refsource_MISC
- http://www.trusteer.com/docs/bind9dns_s.html x_refsource_MISC
- http://www.trustix.org/errata/2007/0023/ vendor-advisoryx_refsource_TRUSTIX
- http://www.ubuntu.com/usn/usn-491-1 vendor-advisoryx_refsource_UBUNTU
- http://www.us-cert.gov/cas/techalerts/TA07-319A.html third-party-advisoryx_refsource_CERTUS Government Resource
- http://www.vupen.com/english/advisories/2007/2627 vdb-entryx_refsource_VUPEN
- http://www.vupen.com/english/advisories/2007/2662 vdb-entryx_refsource_VUPEN
- http://www.vupen.com/english/advisories/2007/2782 vdb-entryx_refsource_VUPEN
- http://www.vupen.com/english/advisories/2007/2914 vdb-entryx_refsource_VUPEN
- http://www.vupen.com/english/advisories/2007/2932 vdb-entryx_refsource_VUPEN
- http://www.vupen.com/english/advisories/2007/3242 vdb-entryx_refsource_VUPEN
- http://www.vupen.com/english/advisories/2007/3868 vdb-entryx_refsource_VUPEN
- https://access.redhat.com/security/cve/CVE-2007-2926 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=248851 Issue Tracking
- https://exchange.xforce.ibmcloud.com/vulnerabilities/35575 vdb-entryx_refsource_XF
- https://issues.rpath.com/browse/RPL-1587 x_refsource_CONFIRM
- https://nvd.nist.gov/vuln/detail/CVE-2007-2926
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10293 vdb-entrysignaturex_refsource_OVAL
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A2226 vdb-entrysignaturex_refsource_OVAL
- https://www.cve.org/CVERecord?id=CVE-2007-2926
Change history (0)
No recorded changes yet.